ASVS Requirement 6.2.10
- Level: 2
- Chapter: V6 Authentication
- Section: V6.2 Password Security
- Source: 0x15-V6-Authentication.md
Description
Verify that a user's password stays valid until it is discovered to be compromised or the user rotates it. The application must not require periodic credential rotation.